US11025628B2

Secure modification of manufacturer usage description files based on device applications

Summary by NHIP

Secure MUD File Modification

The method obtains application requests from a device and provides applications with a certification containing an updated manufacturer usage description identifier. This identifier links to a concatenated file comprising at least two individual portions, each corresponding to a specific requested application.

Claim Score by NHIP

Read claim 1, the broadest

Abstract

Techniques for providing secure modification of manufacturer usage description (MUD) files based on device applications are provided. In one embodiment, a method for secure modification of MUD files may include obtaining a request for one or more applications from a device. The method also includes providing to the device the one or more applications and a certification that includes an updated MUD identifier determined based on the one or more applications requested. The updated MUD identifier is associated with a concatenated MUD file that comprises individual MUD file portions for each of the one or more applications requested. The device is configured to request an updated device identifier using the certification. The updated device identifier includes the updated MUD identifier that is associated with the concatenated MUD file.

US11025628B2, drawing sheet 1
Sheet 1 of 9

Term

12.4 yearsleft in the term

Expires 11 February 2039, including 300 days of term adjustment.

  1. Priority and filed
  2. Granted
  3. Today
  4. Expires

23 claims: 3 independent, 20 dependent

  1. 1
    Broadest claimClaim Score 74, broad(NHIP)A method comprising:obtaining a request for one or more applications from a device;providing to the device the one or more applications and a certification that includes an updated manufacturer usage description (MUD) identifier determined based on the one or more applications requested;andwherein the updated MUD identifier is associated with a concatenated MUD file that comprises at least two individual MUD file portions, each for a corresponding application.
  2. 12
    An apparatus comprising:a communication interface configured to enable network communications;anda processor coupled with the communication interface, and configured to: obtain a request for one or more applications from a device;provide to the device the one or more applications and a certification that includes an updated manufacturer usage description (MUD) identifier determined based on the one or more applications requested;andwherein the updated MUD identifier is associated with a concatenated MUD file that comprises at least two individual MUD file portions, each for a corresponding application.
  3. 18
    A system comprising:at least one device;an access control software service in communication with the at least one device, the access control software service being configured to enforce access control permissions on a communication network for the at least one device;an authenticator software service in communication with the at least one device, the authenticator software service configured to provide device identifiers;a manufacturer application service apparatus in communication with the at least one device, the manufacturer application service apparatus comprising a communication interface configured to enable network communications on the communication network, and a processor coupled with the communication interface, and configured to: obtain a request for one or more applications from the at least one device;provide to the at least one device the one or more applications and a certification that includes an updated manufacturer usage description (MUD) identifier determined based on the one or more applications requested;andwherein the updated MUD identifier is associated with a concatenated MUD file that comprises at least two individual MUD file portions, each for a corresponding application.